Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
234381 7.5 危険 phpmotion - PHPmotion の play.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3118 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
234382 6.5 警告 phpmotion - PHPmotion の update_profile.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-3117 2012-12-20 18:52 2008-07-10 Show GitHub Exploit DB Packet Storm
234383 4.3 警告 v-webmail - V-webmail の redirect.php におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2008-3061 2012-12-20 18:52 2008-10-7 Show GitHub Exploit DB Packet Storm
234384 5 警告 v-webmail - V-webmail における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-3060 2012-12-20 18:52 2008-10-7 Show GitHub Exploit DB Packet Storm
234385 7.5 危険 TYPO3 Association - TYPO3 用の Codeon Petition エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3056 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
234386 7.5 危険 TYPO3 Association - TYPO3 用の Support view エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3055 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
234387 7.5 危険 TYPO3 Association - TYPO3 用の Branchenbuch エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3054 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
234388 7.5 危険 TYPO3 Association - TYPO3 用の SQL Frontend エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3053 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
234389 7.5 危険 TYPO3 Association - TYPO3 用の SQL Frontend エクステンションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-3052 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
234390 7.5 危険 TYPO3 Association - TYPO3 用の Pinboard エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3051 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346221 - gnu mailman CRLF injection vulnerability in Utils.py in Mailman before 2.1.9rc1 allows remote attackers to spoof messages in the error log and possibly trick the administrator into visiting malicious URLs via CR… CWE-94
Code Injection
CVE-2006-4624 2018-10-18 06:38 2006-09-8 Show GitHub Exploit DB Packet Storm
346222 - softbb softbb Direct static code injection vulnerability in admin/save_opt.php in SoftBB 0.1, and possibly earlier, allows remote authenticated users to upload and execute arbitrary PHP code via the cache_forum pa… NVD-CWE-Other
CVE-2006-4631 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346223 - softbb softbb Multiple SQL injection vulnerabilities in SoftBB 0.1, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via the (1) groupe parameter in addmembre.php and the (2) select p… NVD-CWE-Other
CVE-2006-4632 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346224 - softbb softbb index.php in SoftBB 0.1, and possibly earlier, allows remote attackers to obtain the installation path via a null or invalid page[] parameter. NVD-CWE-Other
CVE-2006-4633 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346225 - vbzoom vbzoom Cross-site scripting (XSS) vulnerability in index.php in VBZooM allows remote attackers to inject arbitrary web script or HTML via the UserID parameter, a different vector than CVE-2006-1133 and CVE-… NVD-CWE-Other
CVE-2006-4634 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346226 - acgv_news acgv_news Multiple PHP remote file inclusion vulnerabilities in ACGV News 0.9.1 allow remote attackers to execute arbitrary PHP code via a URL in the PathNews parameter in (1) header.php or (2) news.php. NOTE… CWE-94
Code Injection
CVE-2006-4637 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346227 - acgv_news acgv_news Successful exploitation requires that "register_globals" is enabled. CWE-94
Code Injection
CVE-2006-4637 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346228 - c-news.fr c-news Multiple PHP remote file inclusion vulnerabilities in C-News.fr C-News 1.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the path … CWE-94
Code Injection
CVE-2006-4639 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346229 - auditwizard auditwizard AuditWizard 6.3.2, when using "Remote Audit," logs the administrator password in plaintext to LaytonCmdSvc.log, which allows local users to obtain sensitive information by reading the file. NVD-CWE-Other
CVE-2006-4642 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346230 - akarru social_bookmarking_engine PHP remote file inclusion vulnerability in akarru.gui/main_content.php in Akarru Social BookMarking Engine 0.4.3.34 and earlier, and possibly 0.4.4.120, allows remote attackers to execute arbitrary P… NVD-CWE-Other
CVE-2006-4645 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm